SECURE PAYMENT GATEWAY
PCI Compliant Web Forms
Protect your customers’ payment card data with one intuitive solution so you can confidently collect and automate payments
OUT OF THE BOX
Quick start templates
Leverage a library of pre-built form templates and workflows to quickly build impactful, PCI DSS-compliant processes for your organization.
- Online order form
- Donation form
- Event registration
- Appointment booking
Trustworthy data handling
“With FormAssembly, security is clearly defined and protected, specifically with the data we’re collecting and storing.”
– Adam Smeets, Director of University Information Systems at Dominican University
FormAssembly security measures
What does it mean to be PCI DSS Compliant?
PCI DSS (Payment Card Industry Data Security Standard) is a widely accepted set of policies and procedures intended for organizations that handle credit, debit, and cash card transactions to ensure the protection of cardholders’ personal information. Obtaining a PCI DSS Report on Compliance (ROC) and Attestation of Compliance (AOC) demonstrates your organization’s commitment to payment card data security and identifies the level of validation you have achieved.
What is FormAssembly’s dedication to compliance?
FormAssembly is committed to complying with GLBA in all global operations as well as developing our products to help customers comply with applicable GDPR requirements. FormAssembly also adheres to NIST, ISO, PCI, and HITECH best practices.
How do you handle sensitive data management?
Along with GLBA compliance, Enterprise plans give you unique control over sensitive data. With Sensitive Data Management, you control who can view data, unlock reports containing sensitive data for a specified amount of time, view a log of sensitive data access, and more.
Do you provide encryption at rest and in transit?
FormAssembly uses several methods to encrypt data during transit and when stored (at rest). These include strong cryptography and encryption techniques such as TLS 1.2 to safeguard confidential data during transmission over public networks.